Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

openSUSE-SU-2020:1718-1

Опубликовано: 23 окт. 2020
Источник: suse-cvrf

Описание

Security update for chromium

This update for chromium fixes the following issues:

  • Update to 86.0.4240.111 boo#1177936
    • CVE-2020-16000: Inappropriate implementation in Blink.
    • CVE-2020-16001: Use after free in media.
    • CVE-2020-16002: Use after free in PDFium.
    • CVE-2020-15999: Heap buffer overflow in Freetype.
    • CVE-2020-16003: Use after free in printing.

Список пакетов

openSUSE Leap 15.1
chromedriver-86.0.4240.111-lp151.2.147.1
chromium-86.0.4240.111-lp151.2.147.1

Описание

Heap buffer overflow in Freetype in Google Chrome prior to 86.0.4240.111 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.


Затронутые продукты
openSUSE Leap 15.1:chromedriver-86.0.4240.111-lp151.2.147.1
openSUSE Leap 15.1:chromium-86.0.4240.111-lp151.2.147.1

Ссылки

Описание

Inappropriate implementation in Blink in Google Chrome prior to 86.0.4240.111 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.


Затронутые продукты
openSUSE Leap 15.1:chromedriver-86.0.4240.111-lp151.2.147.1
openSUSE Leap 15.1:chromium-86.0.4240.111-lp151.2.147.1

Ссылки

Описание

Use after free in media in Google Chrome prior to 86.0.4240.111 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.


Затронутые продукты
openSUSE Leap 15.1:chromedriver-86.0.4240.111-lp151.2.147.1
openSUSE Leap 15.1:chromium-86.0.4240.111-lp151.2.147.1

Ссылки

Описание

Use after free in PDFium in Google Chrome prior to 86.0.4240.111 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF file.


Затронутые продукты
openSUSE Leap 15.1:chromedriver-86.0.4240.111-lp151.2.147.1
openSUSE Leap 15.1:chromium-86.0.4240.111-lp151.2.147.1

Ссылки

Описание

Use after free in printing in Google Chrome prior to 86.0.4240.111 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.


Затронутые продукты
openSUSE Leap 15.1:chromedriver-86.0.4240.111-lp151.2.147.1
openSUSE Leap 15.1:chromium-86.0.4240.111-lp151.2.147.1

Ссылки
Уязвимость openSUSE-SU-2020:1718-1